[gnutls-devel] GnuTLS | Duplicated key_shares from client are not detected by GnuTLS server (#908)

Development of GNU's TLS library gnutls-devel at lists.gnutls.org
Thu Jan 16 20:10:56 CET 2020




Hubert Kario (@mention me if you need reply) commented:


When there are entries in key_share that don't correspond to groups in supported_groups, the handshake is also not aborted.

Test case for this is in `test-tls13-obsolete-curves.py` (added by https://github.com/tomato42/tlsfuzzer/pull/540)

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/issues/908#note_272776107
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20200116/bd509c60/attachment.html>


More information about the Gnutls-devel mailing list